zoomqq[.]mobi
“ZOOMQQ | Situs Judi Slot Pkv - Pkv Games - QQ Online”
zoomqq.mobi — Контент недоступен (HTTP 502). Олицетворение бренда: Zoom. Сводка доказательств: VirusTotal 3/93 (alphaMountain.ai, CRDF, Gridinsoft); PhishDestroy score 65/100. Регистратор: Spaceship.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, zoomqq.mobi, is flagged for elevated-risk brand impersonation targeting Zoom, a widely used video conferencing platform. Analysis indicates the infrastructure was designed to deceive users into believing they were accessing legitimate Zoom services, though the page title—'ZOOMQQ | Situs Judi Slot Pkv - Pkv Games - QQ Online'—suggests a secondary or misconfigured purpose, potentially gambling-related. The discrepancy between the impersonated brand and the displayed content raises concerns about dual-use or compromised infrastructure, though the primary threat remains brand impersonation for credential harvesting or malware distribution. Infrastructure analysis reveals the domain was registered on April 14, 2025, through Spaceship, Inc., and resolves to the IP address 128.199.218.78. VirusTotal reports 3 out of 95 security vendors flagging the domain, while Gridinsoft assigns a trust score of 0/100. The domain appears on three security blocklists and is actively blocked by MetaMask, SEAL, and PhishDestroy. Detected technologies include Microsoft ASP.NET, RequireJS, AMP, jQuery, Google Hosted Libraries, and Google Analytics, which may have been leveraged to enhance the appearance of legitimacy or track victim interactions. Mitigation against brand impersonation threats requires multi-layered defenses. Organizations should implement domain monitoring to detect newly registered domains containing their brand names, particularly those registered through high-risk registrars or with suspicious creation timelines. End users should verify domain authenticity by cross-referencing URLs with official communications and avoiding interaction with domains that deviate from known patterns. Security teams are advised to block the domain and associated IP at the network perimeter, while also educating users on recognizing impersonation tactics, such as mismatched page titles or unexpected redirects. Given the domain’s current offline status, continuous monitoring for reactivation or related infrastructure is recommended.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 6 identified
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of zoomqq.mobi · checked Jun 27, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание